Web Page Access
Access Policies are grouped by Tenancy:
- Company
- Policy Group
- Universal
- System
See Article on Tenancy and Heirarchy under Essential Concepts for more information.
Company Access Policy record
- Company: the Company associated with the Access Policy
- Policy: the Accountibility Policy (if any) associated with the Access Policy (If there is none, this field will not appear)
- Status: this record is Active or Inactive
- Canonical ID: the global unique identifier for this Access Policy; used for synchronization
- Company Policy Dashboard [link]: jump to the Access Policy Dashboard of the associated Company (above)
- Type: the tenancy type of the Access Policy
- Hits Today: a counter of how many times web traffic has triggered this policy on this DrawBridge
- Device Group: the associated Device Group: who the Access Policy is applied to
- Action Group: the associated Action Group: what the Access Policy is enforcing
- Time Group: the associated Time Group: when the Access Policy is effective. Optional: if no Time Group is configured, the Access Policy applies all the time.
- Application Group: the associated Application Group: which application traffic the Access Policy acts upon. Optional: if no Application Group is configured, the Access Policy will apply to the traffic from all applications.
Record menu options
Action items in the upper right corner of the Access Policy record page:
- Create Access Policy with the + button
- Update Company Access Policy with the pencil Edit button -- make changes to this access policy.
- Delete Company Access Policy with the trashcan Delete button -- delete this access policy
-
"Hamburger Menu"
- Record Activity Stream: view the changelog for this Access Policy record
- Bookmark the page with the ribbon Bookmark icon
- Trigger Sync actions with items in the the chain-link sync icon menu
Informational Tabs
- Devices: List view of the member devices in the associated Device Group
-
Categories: List view of the Categories contained in the associated Action Group.
-
Add an additional Category to the Action Group with the
Add Category Action Pair
button, or add multiple Categories at once with theBulk Assign Categories
button. -
Edit the Action (Allow/Ignore/Block) of a listed Category by clicking the pencil
Update Record
button on the specific Category line desired. -
Remove a Category from the Action Group with the trashcan
Delete
button.Note: removing a Category from an Action Group will return the Action setting for that particular Category to the Action assigned to it in the default DrawBridge configuration (unless another Action Group includes that Category).
-
The
Record Activity Stream
button on each line provides an audit history log of changes to the association of this Category to the Action Group, as well as the assigned Action
-
-
Times: List view of the Time Range(s) when this Policy is effective. Note: this tab only displays if a Time Group is assigned to the Policy.
- Add a Time Range with the
Add Time Range
button. - Edit a Time Range with the pencil
Update Record
button on the time range line in focus - Delete a Time Range with the trashcan
Delete Record
button on the time range line in focus - The
Record Activity Stream
button on each line provides an audit history log of changes to the association of this Time Range to the Time Group, as well as the specified Times.
- Add a Time Range with the
-
ACL Actions: Special access control list actions that are assigned to this access policy.
- Add an ACL action with the
Add ACL Action
button - Edit an ACL Action with the pencil
Update Record
button on the ACL Action line in focus - Delete an ACL action with the trashcan
Delete Record
button on the ACL Action line in focus
- Add an ACL action with the
-
Permissions: The permission level required to edit the patterns or the category association actions and the ability to enter the policy or exit the policy.
- The ACL enter and exit group sets whether a company owner permission level user can turn this policy On/Off
- The enter and exit actions the alternative to company owner is accountability if a particular policy is required by an accountability policy then the option displayed will be accountability which prevents the company owner from making those changes.
Record menu options
Create Access Policywith the+buttonUpdate Company Access Policywith the pencil Edit button -- make changes to this access policy.Delete Company Access Policywith the trashcan Delete button -- delete this access policyRecord Activity Stream:view the changelog for this Access Policy recordBookmarkthe page with the ribbon Bookmark iconTrigger Sync actionswith items in the the chain-link sync icon menu
Access Policy Group record
- Policy: the Accountibility Policy (if any) associated with the Access Policy (If there is none, this field will not appear)
- Status: this record is Active or Inactive
- Canonical ID: the global unique identifier for this Access Policy; used for synchronization
- Type: the tenancy type of the Access Policy
- Hits Today: a counter of how many times web traffic has triggered this policy on this DrawBridge
- Device Group: the associated Device Group: who the Access Policy is applied to
- Action Group: the associated Action Group: what the Access Policy is enforcing
- Time Group: the associated Time Group: when the Access Policy is effective. Optional: if no Time Group is configured, the Access Policy applies all the time.
- Application Group: the associated Application Group: which application traffic the Access Policy acts upon. Optional: if no Application Group is configured, the Access Policy will apply to the traffic from all applications.
Record menu options
-
Create Access Policy with the + button
-
Update Company Access Policy with the pencil Edit button -- make changes to this access policy.
-
Delete Company Access Policy with the trashcan Delete button -- delete this access policy
-
"Hamburger Menu"
-
Add Device Group: assign an additional Device Group to this Access policy Group
-
Record Activity Stream: view the changelog for this Access Policy record
-
Bookmark the page with the ribbon Bookmark icon
-
Trigger Sync actions with items in the the chain-link sync icon menu
Informational Tabs
- Add Device Group: assign an additional Device Group to this Access policy Group
- Record Activity Stream: view the changelog for this Access Policy record
- Device Groups: List view of the member device groups in the associated Device Group collection.
-
Categories: List view of the Categories contained in the associated Action Group.
-
Add an additional Category to the Action Group with the
Add Category Action Pair
button, or add multiple Categories at once with theBulk Assign Categories
button. -
Edit the Action (Allow/Ignore/Block) of a listed Category by clicking the pencil
Update Record
button on the specific Category line desired. -
Remove a Category from the Action Group with the trashcan
Delete
button.Note: removing a Category from an Action Group will return the Action setting for that particular Category to the Action assigned to it in the default DrawBridge configuration (unless another Action Group includes that Category).
-
The
Record Activity Stream
button on each line provides an audit history log of changes to the association of this Category to the Action Group, as well as the assigned Action
-
-
Times: List view of the Time Range(s) when this Policy is effective. Note: this tab only displays if a Time Group is assigned to the Policy.
- Add a Time Range with the
Add Time Range
button. - Edit a Time Range with the pencil
Update Record
button on the time range line in focus - Delete a Time Range with the trashcan
Delete Record
button on the time range line in focus - The
Record Activity Stream
button on each line provides an audit history log of changes to the association of this Time Range to the Time Group, as well as the specified Times.
- Add a Time Range with the
-
ACL Actions: Special access control list actions that are assigned to this access policy.
- Add an ACL action with the
Add ACL Action
button - Edit an ACL Action with the pencil
Update Record
button on the ACL Action line in focus - Delete an ACL action with the trashcan
Delete Record
button on the ACL Action line in focus
- Add an ACL action with the
-
Permissions: The permission level required to edit the patterns or the category association actions and the ability to enter the policy or exit the policy.
- The ACL enter and exit group sets whether a company owner permission level user can turn this policy On/Off
- The enter and exit actions the alternative to company owner is accountability if a particular policy is required by an accountability policy then the option displayed will be accountability which prevents the company owner from making those changes.